DocumentCode
3204046
Title
Design and implementation MAC in security operating system
Author
Yi, Cai ; Zhi-rong, Zheng ; Chang-xiang, Shen
Author_Institution
Comput. Technol. Res. Inst. of Navy, Beijing, China
Volume
1
fYear
2002
fDate
28-31 Oct. 2002
Firstpage
216
Abstract
Users and resources in a system are defined subjects and objects separately and abstractly by a mandatory access control mechanism. Both subjects and objects are endowed with security levels. Subjects accessing objects must obey security policy according their security levels in MAC. In this paper, we introduce how to design and implement a MAC mechanism in a security operating system. It includes how to define security levels based on the BLP model, and why and how to create multilevel directories.
Keywords
authorisation; operating systems (computers); mandatory access control mechanism; multilevel directories; security operating system; Access control; Computer aided instruction; Computer interfaces; Control systems; Guidelines; Hardware; Information security; National security; Operating systems; Sections;
fLanguage
English
Publisher
ieee
Conference_Titel
TENCON '02. Proceedings. 2002 IEEE Region 10 Conference on Computers, Communications, Control and Power Engineering
Print_ISBN
0-7803-7490-8
Type
conf
DOI
10.1109/TENCON.2002.1181253
Filename
1181253
Link To Document